CVE-2005-0373

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
07/10/2004
Last modified:
03/04/2025

Description

Buffer overflow in digestmd5.c CVS release 1.170 (also referred to as digestmda5.c), as used in the DIGEST-MD5 SASL plugin for Cyrus-SASL but not in any official releases, allows remote attackers to execute arbitrary code.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:cyrus:sasl:1.5.24:*:*:*:*:*:*:*
cpe:2.3:a:cyrus:sasl:1.5.27:*:*:*:*:*:*:*
cpe:2.3:a:cyrus:sasl:1.5.28:*:*:*:*:*:*:*
cpe:2.3:a:cyrus:sasl:2.1.9:*:*:*:*:*:*:*
cpe:2.3:a:cyrus:sasl:2.1.10:*:*:*:*:*:*:*
cpe:2.3:a:cyrus:sasl:2.1.11:*:*:*:*:*:*:*
cpe:2.3:a:cyrus:sasl:2.1.12:*:*:*:*:*:*:*
cpe:2.3:a:cyrus:sasl:2.1.13:*:*:*:*:*:*:*
cpe:2.3:a:cyrus:sasl:2.1.14:*:*:*:*:*:*:*
cpe:2.3:a:cyrus:sasl:2.1.15:*:*:*:*:*:*:*
cpe:2.3:a:cyrus:sasl:2.1.16:*:*:*:*:*:*:*
cpe:2.3:a:cyrus:sasl:2.1.17:*:*:*:*:*:*:*
cpe:2.3:a:cyrus:sasl:2.1.18:*:*:*:*:*:*:*
cpe:2.3:a:cyrus:sasl:2.1.18_r1:*:*:*:*:*:*:*
cpe:2.3:a:openpkg:openpkg:2.1:*:*:*:*:*:*:*